ion-parser@0.5.1 vulnerabilities

The fastest and lightest parser for TOML and ION files, an alternative to JSON or YAML file formats.

Direct Vulnerabilities

Known vulnerabilities in the ion-parser package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Prototype Pollution

ion-parser is a The fastest and lightest parser for TOML and ION files, an alternative to JSON or YAML file formats.

Affected versions of this package are vulnerable to Prototype Pollution. If an attacker submits a malicious INI file to an application that parses it with parse , they will pollute the prototype on the application. This can be exploited further depending on the context.

How to fix Prototype Pollution?

There is no fixed version for ion-parser.

*